TeamPass 2.1.27.36 allows Stored XSS by setting a crafted password for an item in a common available folder or sharing the item with an admin. (The crafted password is exploitable when viewing the change history of the item or tapping on the item.)
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/nilsteampassnet/TeamPass/issues/2685 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-09-26T11:06:33
Updated: 2024-08-05T01:24:48.118Z
Reserved: 2019-09-26T00:00:00
Link: CVE-2019-16904
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-09-26T12:15:11.533
Modified: 2024-11-21T04:31:18.770
Link: CVE-2019-16904
Redhat
No data.